CVE-2010-0307 is a local denial-of-service vulnerability affecting the Linux kernel on x86_64 platforms, specifically versions before 2.6.32.8, including various Canonical and Debian distributions. It arises from a flaw in the load_elf_binary function, allowing a 32-bit application to crash the system by attempting to execute a 64-bit application. With a CVSS score of 4.7 (AV:L/AC:M/Au:N/C:N/I:N/A:C), this vulnerability has a medium attack complexity and requires local access, leading to a complete system availability impact. While not actively exploited in the wild or on the KEV catalog, public exploit code (EDB-33585) exists, and there has been some community discussion on Reddit regarding new kernel vulnerabilities in Ubuntu.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
< 2.6.32.8CPE matchmatch criteria | cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* | ||
4.0CPE matchmatch criteria | cpe:2.3:o:debian:debian_linux:4.0:*:*:*:*:*:*:* | ||
5.0CPE matchmatch criteria | cpe:2.3:o:debian:debian_linux:5.0:*:*:*:*:*:*:* | ||
6.06CPE matchmatch criteria | cpe:2.3:o:canonical:ubuntu_linux:6.06:*:*:*:lts:*:*:* | ||
8.04CPE matchmatch criteria | cpe:2.3:o:canonical:ubuntu_linux:8.04:*:*:*:lts:*:*:* |
CVSS version used by this source: 2.0
AV:L/AC:M/Au:N/C:N/I:N/A:C
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.0 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.